Skip to main content

Table 5 Performance of the clean (top) and s-infected (bottom) models on the clean version of the OR dataset broken down by the degree of overlap

From: Trembling triggers: exploring the sensitivity of backdoors in DNN-based face recognition

  

FREE

TOUCH

OVERLAP

Clean

ACC

0.54

0.98

0.97

model

ASR

0.00

0.00

0.00

s-infected

ACC

0.48

0.95

0.91

model

ASR

0.32

0.03

0.06